Vendor Risk Professional

Western Alliance BankNovi, MI
264d

About The Position

As a Vendor Risk Professional you'll support Third-Party Management Services 'TPMS' and assist senior risk professionals and the Senior Manager of Third Party and Sourcing in managing a sub-portfolio of external suppliers performing services to the Bank. You'll manage the full life cycle for third-party management processes from onboarding to managing existing third-party relationships, building risk assessment, assessing controls, and reviewing third-parties based on required regulations. You will evaluate third-parties and build rating-based risk profiles, facilitate due diligence questionnaires, and obtain various approvals for your assigned supplier portfolio category. You'll monitor requirements in accordance with the defined framework and work with various risk control partners such as Information Security/IT; Fraud, Business Continuity, Compliance, Privacy and Legal. Manage the daily third-party management operations. Ensure the department follows the strategic direction, prioritization, mission, and vision of the TPMS and its policies and procedures. Work within our GRC platform for use in core operations, including third-party onboarding, tracking, analytics, and performance management. Monitor adherence to the Third-Party Management Policy by reviewing and maintaining third-party documentation to ensure accuracy and completeness. Serve as a single point of contact for TPMS related questions and issues and interact with multiple internal stakeholders and third-parties throughout the lifecycle. Build close relationships with business owners to understand their strategy or direction and collect the due diligence review results. Facilitate contract review between business partners, third-parties, and legal. Prepare documents, support internal/external discussions regarding third-party management issues, and maintain third-party compliance and approval of third-party access. Leverage standard frameworks such as NIST, ISO, COBIT, policies, standards, and procedures to recommend mitigating control to meet regulatory requirements specifically SOX, CCPA, GDPR, PCI. Work with Legal to define and build contract term playbook library. Assist in tracking and reporting of score cards and SLAs. Develop, implement, monitor, and report performance measures that demonstrate value and ensure third-party performance. Act as a primary liaison with the business and TPRM 2nd Line to build risk assessment and required control as well as align the outstanding issues to the risk assessment and monitor the resolution of issues. Assist procurement services teams to ensure compliance with Third-Party management policy, sourcing, and negotiated agreements relating to core operations services and products.

Requirements

  • 5+ years of related experience in Vendor Management, Risk Management or similar field.
  • Bachelor's degree or equivalent experience required; Bachelor's degree in related field preferred.
  • Intermediate knowledge of general banking or financial services is preferred.
  • Intermediate knowledge of applicable regulatory and legal compliance obligations, rules and regulations, industry standards and practices.
  • Intermediate experience with FFIEC auditing regulations, or similar financial industry requirements is strongly preferred.
  • Experience with risk control processes, ideally in a financial service industry preferred.
  • Intermediate exposure to Risk Management Technology Platforms (i.e. ProcessUnity, Venminder, SAI360, RSA-Archer).
  • Experience building Risk Control Self-Assessment (RCSA), TPRM, Application Control Testing, SOX compliance Testing, Vulnerability Analysis, Change Management, and Data Cryptography.
  • Knowledge and skills of Microsoft Office Suite.
  • Intermediate speaking and writing communication skills.
  • Certified Regulatory Vendor Program Management (CRVPM) Level 1 preferred; Certified Third Party Risk Professional (CTPRP) preferred.

Responsibilities

  • Support Third-Party Management Services (TPMS) and assist senior risk professionals.
  • Manage the full life cycle for third-party management processes from onboarding to managing existing third-party relationships.
  • Build risk assessments, assess controls, and review third-parties based on required regulations.
  • Evaluate third-parties and build rating-based risk profiles.
  • Facilitate due diligence questionnaires and obtain various approvals for assigned supplier portfolio category.
  • Monitor requirements in accordance with the defined framework.
  • Work with various risk control partners such as Information Security/IT, Fraud, Business Continuity, Compliance, Privacy, and Legal.
  • Manage daily third-party management operations.
  • Ensure adherence to the Third-Party Management Policy by reviewing and maintaining third-party documentation.
  • Serve as a single point of contact for TPMS related questions and issues.
  • Build close relationships with business owners to understand their strategy or direction.
  • Facilitate contract review between business partners, third-parties, and legal.
  • Prepare documents and support internal/external discussions regarding third-party management issues.
  • Leverage standard frameworks such as NIST, ISO, COBIT to recommend mitigating controls.
  • Work with Legal to define and build contract term playbook library.
  • Assist in tracking and reporting of score cards and SLAs.
  • Develop, implement, monitor, and report performance measures that demonstrate value.
  • Act as a primary liaison with the business and TPRM 2nd Line to build risk assessment and required control.
  • Assist procurement services teams to ensure compliance with Third-Party management policy.

Benefits

  • Competitive salaries
  • Ownership stake in the company
  • Medical and dental insurance
  • Time off
  • Great 401k matching program
  • Tuition assistance program
  • Employee volunteer program
  • Wellness program

Stand Out From the Crowd

Upload your resume and get instant feedback on how well it matches this job.

Upload and Match Resume

What This Job Offers

Career Level

Mid Level

Industry

Credit Intermediation and Related Activities

Education Level

Bachelor's degree

© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service